Latest 1z0-1104-23 Practice Test Questions Verified Answers As Experienced in the Actual Test!
Pass Oracle 1z0-1104-23 Exam in First Attempt Easily
NEW QUESTION # 51
Which type of file system does file storage use?
- A. NFSv3
- B. iSCSI
- C. Paravirtualized
- D. SSD
- E. NVMe
Answer: A
Explanation:
Explanation
The File Storage service supports the Network File System version 3.0 (NFSv3) protocol. The service supports the Network Lock Manager (NLM) protocol for file locking functionality.
https://docs.oracle.com/en-us/iaas/Content/File/Concepts/filestorageoverview.htm
NEW QUESTION # 52
How can you restrict access to OCI console from unknown IP addresses?
- A. Make OCI resources private instead of public
- B. Create PAR to restrict access the access
- C. Create tenancy's authentication policy and create WAF rules
- D. Create tenancy's authentication policy and add a network source
Answer: D
Explanation:
Explanation
Graphical user interface, text, application, Word Description automatically generated
NEW QUESTION # 53
With regard to WAF in OCI, which of the following statements are NOT customer's responsibility? Select TWO answers.
- A. Configure WAF policies for websites
- B. Import latest OWASP Core Rule Sets
- C. Configure Bot Managementstrategies for a website traffic
- D. WAF edge nodes with High Availability
Answer: B,D
Explanation:
Explanation
The management of WAF edge nodes and the importation of the latest OWASP Core Rule Sets are handled by Oracle, not the customer. The customer is responsible for configuring WAF policies and Bot Management strategies for their website traffic
NEW QUESTION # 54
You want to make API calls against other OCI services from your instance without configuring user credentials. How would you achieve this?
- A. No configuration is required for making API calls.
- B. Create a group and add a policy.
- C. Create a dynamic group and add apolicy.
- D. Create a dynamic group and add your instance.
Answer: C
Explanation:
Explanation
DYNAMIC GROUP
Dynamic groups allow you to group Oracle Cloud Infrastructure instances as principalactors, similar to user groups. You can then create policies to permit instances in these groups to make API calls against Oracle Cloud Infrastructure services. Membership in the group is determined by a set of criteria you define, called matching rules.https://docs.cloud.oracle.com/en-us/iaas/Content/Identity/Tasks/callingservicesfrominstances.htm
NEW QUESTION # 55
Oracle Object Storage achieves data durability by which of the mechanisms ? Select TWO correct answers
- A. Redundant Array of IndependentDisks
- B. Service Gateway
- C. Redundant Storage across availability domains
- D. Object Versioning
Answer: C,D
Explanation:
Explanation
Graphical user interface, text, application, email Description automatically generated
NEW QUESTION # 56
As a Security Admin you want to inspect the metadata and actual data in your Oracle databases to discover sensitive data and provide comprehensive results listing the sensitive columns and related information. Which Data Safe feature will help you to achieve the above requirement ?
- A. Security Assessment
- B. User Assessment
- C. Data Discovery
- D. Data Masking
Answer: C
Explanation:
Explanation
Graphical user interface, text, application, email Description automatically generated
NEW QUESTION # 57
What information do youget by using the Network Visualizer tool?
- A. Routes defined between subnets and gateways
- B. State of subnets in a VCN
- C. Interconnectivity of VCNs
- D. Organization of subnets and VLANs across availability domains
Answer: C
Explanation:
Explanation
https://docs.oracle.com/en-us/iaas/Content/Network/Concepts/network_visualizer.htm You can view and understand the following from this diagram:
How VCNs are inter-connected
How on-premises networks are connected (using FastConnect or Site-to-Site VPN) Which routing entities (DRGs and so on) control trafficrouting How your transit routing is configured
NEW QUESTION # 58
Which architecture is based on the principle of "never trust, always verify"?
- A. Zero trust
- B. Defense in depth
- C. Fluidperimeter
- D. Federated identity
Answer: A
Explanation:
Explanation
Enterprise Interest in Zero Trust is GrowingRansomware and breaches are top of the news cycle and a major concern for organizations big and small. So, many are now looking at the Zero Trust architecture and its primary principle "never trust, always verify" to provide greater protection.
According to Report Linker, the Zero Trust security market is projected to grow from USD 15.6 billion in
2019 to USD 38.6 billion by 2024 and that sounds right based on the large number of companies pitching their Zero Trustwares at RSA 2020.
The enterprise was well represented at the conference and there was a tremendous amount of interest in Zero Trust. Interestingly, even though Zero Trust environments are often made up of several solutions from multiple vendors it hasn'tprevented each of the vendors from evangelizing their flavors of Zero Trust. This left the thousands of attendees to attempt to cut through the Zero Trust buzz and noise and make their own conclusions to the best approach.
https://blogs.oracle.com/cloudsecurity/post/rsa-2020-recap-cloud-security-moves-to-the-front
NEW QUESTION # 59
Which components are a part of the OCI Identity and Access Management service?
- A. Policies
- B. Regional subnets
- C. Compute instances
- D. VCN
Answer: A
Explanation:
Explanation
https://docs.oracle.com/en-us/iaas/Content/Identity/Concepts/overview.htm
NEW QUESTION # 60
Which statement is true about origin management in WAF?
Statement A: Multiple origins can be defined.
Statement B: Only a single origin can be active fora WAF.
- A. Both the statements are false.
- B. Both the statements are true.
- C. Only statement A is true.
- D. Only statement B is true.
Answer: C
Explanation:
Statement A: Multiple origins can be defined1. This is true. In Oracle Cloud Infrastructure's Web Application Firewall (WAF), multiple origins can be defined for a WAF policy using Origin Groups1. When at least two origins are configured, load balancing is enabled1.
Statement B: Only a single origin can be active for a WAF2. This is false. In the Origin Settings of the WAF policy, all origins are active under origin groups2.
NEW QUESTION # 61
An e-commerce company needs to authenticate with third-party API that don't support OCI's signature-based authentication.
What can be the solution for the above scenario?
- A. Security Token
- B. API Key Authentication
- C. Auth Token/Swift Password
- D. Asymmetric keys
Answer: C
Explanation:
Explanation
Graphical user interface, text, application, email Description automatically generated
NEW QUESTION # 62
What do the features of OS Management Service do?
- A. Increase security and reliability by regular bug fixes.
- B. Add complexity in using multiple tools tomanage mixed-OS environments.
- C. Encourage manual setup to avoid machine-induced errors.
- D. Provide paid service and support to OCI subscribers for fixes on priority.
Answer: A
Explanation:
Explanation
https://docs.oracle.com/en/solutions/oci-best-practices/manage-your-operating-systems1.html
NEW QUESTION # 63
Which type of software do you use to centrally distributeand monitor the patch level of systems throughout the enterprise?
- A. Patch Management software
- B. Network Monitor software
- C. Web Application Firewall
- D. Recovery Manager software
Answer: A
Explanation:
Explanation
https://docs.oracle.com/cd/E11857_01/em.111/e18710/T531901T535649.htm
NEW QUESTION # 64
Which OCI cloud service lets you centrally manage the encryption keys thatprotect your data and the secret credentials that you use to securely access resources?
- A. Cloud Guard
- B. Data Safe
- C. Vault
- D. Data Guard
Answer: C
Explanation:
Explanation
Oracle Cloud Infrastructure Vault is a managed service that lets you centrally manage the encryption keysthat protect your data and the secret credentials that you use to securely access resources. Vaults securely store master encryption keys and secrets that you might otherwise store in configuration files or in code.
Specifically, depending on the protection mode, keys are either stored on the server or they are stored on highly available and durable hardware security modules (HSM) that meet Federal Information Processing Standards (FIPS) 140-2 Security Level 3 security certification.
https://docs.oracle.com/en-us/iaas/Content/KeyManagement/Concepts/keyoverview.htm
NEW QUESTION # 65
Which statement about Oracle Cloud Infrastructure Multi-Factor Authentication (MFA)is NOT valid?
- A. Users must install a supported authenticator app on the mobile device they intend to register for MFA.
- B. A user can register only one device to use for MFA.
- C. Users cannot disable MFA for themselves.
- D. An administrator can disable MFA for another user.
Answer: C
Explanation:
Explanation
In Oracle Cloud Infrastructure, users can disable Multi-Factor Authentication (MFA) for themselves456. If a user loses their MFA device or wants to register a new one, they can disable MFA for their account and then set it up again with the new device
NEW QUESTION # 66
You want software that can automatically collect and aggregate log data generated throughout your organization's infrastructure, analyze it, and send alerts if it detects a deviation from the norm.
Which software must you use?
- A. Security Integration Management (SIM)
- B. Security Information Management (SIM)
- C. Security Information and Event Management (SIEM)
- D. SecurityEvent Management (SEM)
Answer: C
Explanation:
Explanation
SIEM software can automatically collect and aggregate log data generated throughout your organization's infrastructure, analyze it, and send alerts if it detects a deviation from the norm23.
NEW QUESTION # 67
As a solutions architect, you need to assist operations team to write an I AM policy to give users in group-uat1 and group- uat2 access to manage all resources in the compartment Uat. Which is the CORRECT IAM policy
?
- A. Allow any-user to manage all resources in tenancy where target.compartment= Uat
- B. Allow any-user to manage all resources in compartment Uat where request.group=/group-uat/*
- C. Allow group group-uat1 group-uat2 tomanage all resources in compartment Uat
- D. Allow group /group-uat*/ to manage all resources in compartment Uat
Answer: D
Explanation:
Explanation
This policy allows users in groups whose names start with "group-uat" to manage all resources in the compartment named "Uat"12.
NEW QUESTION # 68
......
We offers you the latest free online 1z0-1104-23 dumps to practice: https://pass4sure.dumpstorrent.com/1z0-1104-23-exam-prep.html